# Fabian Affolter <fab@fedoraproject.org>, 2018. #zanata
# David Bauer <dbxx@posteo.net>, 2020.
# Ettore Atalan <atalanttore@googlemail.com>, 2021.
# Joachim Philipp <joachim.philipp@gmail.com>, 2022.
msgid ""
msgstr ""
"Project-Id-Version: PACKAGE VERSION\n"
"POT-Creation-Date: 2022-05-04 13:46+0200\n"
"PO-Revision-Date: 2022-04-27 13:17+0000\n"
"Last-Translator: Joachim Philipp <joachim.philipp@gmail.com>\n"
"Language-Team: German <https://translate.fedoraproject.org/projects/"
"authselect/master-authselect-migration7adoc/de/>\n"
"Language: de\n"
"MIME-Version: 1.0\n"
"Content-Type: text/plain; charset=UTF-8\n"
"Content-Transfer-Encoding: 8bit\n"
"Plural-Forms: nplurals=2; plural=n != 1;\n"
"X-Generator: Weblate 4.12\n"

#. type: Title =
#: src/man/authselect-migration.7.adoc:2
#, no-wrap
msgid "authselect-migration(7)"
msgstr "authselect-migration(7)"

#. type: Title -
#: src/man/authselect-migration.7.adoc:6
#, no-wrap
msgid "NAME"
msgstr "NAME"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:8
msgid ""
"authselect-migration - A guide how to migrate from authconfig to authselect."
msgstr ""
"authselect-migration - Eine Anleitung zur Migration von authconfig nach "
"authselect."

#. type: Title -
#: src/man/authselect-migration.7.adoc:10
#, no-wrap
msgid "DESCRIPTION"
msgstr "BESCHREIBUNG"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:15
msgid ""
"This manual page explains the main differences between authconfig, the "
"previous tool to configure system authentication and identity sources, and "
"authselect which replaces it. It also explains what actions need to be done "
"in order to migrate from authconfig to authselect."
msgstr ""
"Dieses Handbuch erklärt die Hauptunterschiede zwischen authconfig, dem "
"früheren Tool zur Konfiguration von System Authentisierung und "
"Identitätsquellen, und authselect, welches es ablöst. Es erklärt ebenfalls, "
"welche Schritte zur Migration von authconfig nach authselect nötig sind."

#. type: Title -
#: src/man/authselect-migration.7.adoc:17
#, no-wrap
msgid "MAIN DIFFERENCES"
msgstr "WESENTLICHE UNTERSCHIEDE"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:20
msgid ""
"Authselect takes a completely different approach to system configuration "
"than the previous tool authconfig."
msgstr ""
"Authselect geht die Systemkonfiguration komplett anders an als das alte Tool "
"authconfig."

#. type: Plain text
#: src/man/authselect-migration.7.adoc:25
msgid ""
"Authconfig tries its best to keep users's manual changes to the files it "
"generates. It generates not only PAM configuration files and nsswitch.conf "
"(to setup authentication modules and identity sources) but it also generates "
"simple configuration files for several services such as LDAP and Kerberos."
msgstr ""
"Authconfig tut sein Bestes, die manuellen Änderungen der Nutzer an den "
"Dateien, die generiert werden, zu erhalten. Es generiert nicht nur PAM "
"Konfigurationsdateien und nsswitch.conf (um Authentifizierungsmodule und "
"Identitätsquellen einzurichten), sondern auch einfache Konfigurationsdateien "
"für diverse Dienste wie LDAP und Kerberos."

#. type: Plain text
#: src/man/authselect-migration.7.adoc:34
msgid ""
"Authselect does no such things. It does not generate any configuration files "
"beside PAM and nsswitch.conf and it strictly prohibits any manual changes to "
"generated configuration. It provides a set of files called profiles. Each "
"profile describes how the resulting configuration should look like and it "
"can be slightly modified by enabling or disabling certain optional features. "
"If a need arises for a different profile than what authselect ships, the "
"administrator has an option to create a whole new profile and use it with "
"authselect.  See authselect-profiles(5) to learn more about profiles."
msgstr ""
"Authselect geht einen anderen Weg. Es generiert keine Konfigurationsdateien "
"ausser PAM und nsswitch.conf und es verhindert jegliche Änderung der "
"generierten Konfiguration. Es stellt einen Dateisatz  bereit, der sich "
"profiles nennt. Jedes Profil beschreibt, wie die endgültige Konfiguration "
"aussehen wird und kann leicht verändert werden durch Ein- oder Ausschalten "
"bestimmter optionaler Eigenschaften. Falls ein Profil benötigt wird, das "
"über die mitgelieferten hinausgeht, kann der Administrator ein neues Profil "
"erstellen und es mit authselect benutzen. Weitere Informationen unter "
"authselect-profiles (5)."

#. type: Plain text
#: src/man/authselect-migration.7.adoc:46
msgid ""
"This may seem like a big disadvantage but the truth is the opposite. "
"Authconfig is a very old tool and the applications providing required "
"services have changed rapidly over the years. Typically, there is no longer "
"a need to have multiple authentication modules in PAM and nsswitch.conf, "
"because the vast majority of use-cases is covered by SSSD. Therefore there "
"is no need to add or remove them specifically. There are also better tools "
"to generate configuration for system daemons that can help you automate the "
"process of joining to a remote domain such as `realm`. In addition, the "
"shipped profiles give us comprehensive and deterministic system "
"configuration that can be fully tested and is much less error prone. It is "
"also much easier to distribute such configuration across many systems."
msgstr ""
"Was am Anfang nach einem großen Nachteil aussieht, ist in Wahrheit das "
"Gegenteil. Authconfig ist ein veraltetes Tool und die Anwendungen, die die "
"benötigten Dienste bereitstellen, haben sich über die Jahre drastisch "
"verändert. Z. B. gibt es keinen Bedarf mehr für vielfache "
"Authentifizierungsmodule in PAM oder nsswitch.com, da die Mehrzahl aller "
"Fälle durch SSSD abgedeckt wird. Daher ist es nicht mehr nötig, diese "
"explizit hinzuzufügen oder zu entfernen zu können. Mittlerweile gibt es auch "
"bessere Tools zur Erstellung oder Konfiguration von System Daemons um einer "
"entfernten Domäne beizutreten, wie etwa 'realm'. Darüber hinaus bieten uns "
"die mitgelieferten Profile eine verständliche und deterministische Art der "
"Systemkonfiguration, die vollständig getestet werden kann und dadurch "
"weniger fehleranfällig ist. Ausserdem kann eine solche Konfiguration "
"leichter über mehrere Systeme verteilt werden."

#. type: Plain text
#: src/man/authselect-migration.7.adoc:52
msgid ""
"Probably the most controversial change is that authselect only ships "
"profiles for sssd and winbind providers. Those two providers cover all "
"modern use cases from providing local users and legacy LDAP domain to "
"complex configurations with IPA or Active Directory servers. The profiles no "
"longer contain support for nss-pam-ldapd and users are encouraged to switch "
"to sssd."
msgstr ""
"Die wahrscheinlich umstrittendste Änderung ist, daß authselect nur Profile "
"für sssd und winbind Anbieter mitliefert. Diese zwei Anbieter decken alle "
"gegenwärtigen Fälle ab von lokalen Benutzern und älteren LDAP Domänen bis "
"hin zu komplexen Konfigurationen mit IPA oder Active Directory Servern. Die "
"Profile unterstützen kein nss-pam-ldapd mehr, so daß die Benutzer ermutigt "
"werden, auf sssd zu wechseln."

#. type: Title -
#: src/man/authselect-migration.7.adoc:54
#, no-wrap
msgid "JOINING REMOTE DOMAINS"
msgstr "VERBINDEN ENTFERNTER DOMÄNEN"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:59
msgid ""
"You can use either `ipa-client-install` or `realm` to join an IPA domain and "
"`realm` to join an Active Directory domain. These tools will make sure that "
"the correct authselect profile is selected and all daemons and services are "
"properly configured."
msgstr ""
"Benutzen Sie 'ipa-client-install' oder 'realm', um einer IPA Domäne "
"beizutreten, und 'realm', um einer Active Directory Domäne beizutreten. "
"Diese Anwendungen stellen sicher, dass die richtigen authselect Profile "
"ausgewählt und alle daemons und Dienste richtig konfiguriert werden."

#. type: Title -
#: src/man/authselect-migration.7.adoc:61
#, no-wrap
msgid "CONVERTING YOUR SCRIPTS"
msgstr "KONVERTIERUNG IHRER SKRIPTEN"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:67
msgid ""
"If you use `ipa-client-install` or `realm` to join a domain, you can just "
"remove any authconfig call in your scripts. If this is not an option, you "
"need to replace each authconfig call with its equivalent authselect call to "
"select a correct profile with desired features. Then you also need to write "
"configuration file for required services."
msgstr ""

#. type: Block title
#: src/man/authselect-migration.7.adoc:68
#, no-wrap
msgid "Relation of authconfig options to authselect profiles"
msgstr ""

#. type: Table
#: src/man/authselect-migration.7.adoc:76
#, no-wrap
msgid ""
"|*Authconfig options*                |*Authselect profile*\n"
"|--enableldap --enableldapauth       |sssd\n"
"|--enablesssd --enablesssdauth       |sssd\n"
"|--enablekrb5                        |sssd\n"
"|--enablewinbind --enablewinbindauth |winbind\n"
"|--enablenis                         |nis\n"
msgstr ""
"|*Authconfig options*                |*Authselect profile*\n"
"|--enableldap --enableldapauth       |sssd\n"
"|--enablesssd --enablesssdauth       |sssd\n"
"|--enablekrb5                        |sssd\n"
"|--enablewinbind --enablewinbindauth |winbind\n"
"|--enablenis                         |nis\n"

#. type: Block title
#: src/man/authselect-migration.7.adoc:78
#, no-wrap
msgid "Relation of authconfig options to authselect profile features"
msgstr ""

#. type: Table
#: src/man/authselect-migration.7.adoc:90
#, no-wrap
msgid ""
"|*Authconfig options* |*Authselect profile feature*\n"
"|--enablesmartcard    |with-smartcard\n"
"|--enablefingerprint  |with-fingerprint\n"
"|--enableecryptfs     |with-ecryptfs\n"
"|--enablemkhomedir    |with-mkhomedir\n"
"|--enablefaillock     |with-faillock\n"
"|--enablepamaccess    |with-pamaccess\n"
"|--enablewinbindkrb5  |with-krb5\n"
"|--enableshadow       |_none_\n"
"|--passalgo           |_none_\n"
msgstr ""

#. type: Plain text
#: src/man/authselect-migration.7.adoc:97
msgid ""
"Authconfig options `--enableshadow` and `--passalgo=sha512` were often used "
"to make sure that passwords are stored in `/etc/shadow` using `sha512` "
"algorithm. *The authselect profiles now use the yescrypt hashing method* and "
"it cannot be changed through an option (only by creating a custom profile).  "
"You can just omit these options."
msgstr ""

#. type: Block title
#: src/man/authselect-migration.7.adoc:98
#, no-wrap
msgid "Examples"
msgstr "Beispiele"

#. type: delimited block -
#: src/man/authselect-migration.7.adoc:102
#, no-wrap
msgid ""
"authconfig --enableldap --enableldapauth --enablefaillock --updateall\n"
"authselect select sssd with-faillock\n"
msgstr ""
"authconfig --enableldap --enableldapauth --enablefaillock --updateall\n"
"authselect select sssd with-faillock\n"

#. type: delimited block -
#: src/man/authselect-migration.7.adoc:105
#, no-wrap
msgid ""
"authconfig --enablesssd --enablesssdauth --enablesmartcard --smartcardmodule=sssd --updateall\n"
"authselect select sssd with-smartcard\n"
msgstr ""
"authconfig --enablesssd --enablesssdauth --enablesmartcard --smartcardmodule=sssd --updateall\n"
"authselect select sssd with-smartcard\n"

#. type: delimited block -
#: src/man/authselect-migration.7.adoc:108
#, no-wrap
msgid ""
"authconfig --enableecryptfs --enablepamaccess --updateall\n"
"authselect select sssd with-ecryptfs with-pamaccess\n"
msgstr ""
"authconfig --enableecryptfs --enablepamaccess --updateall\n"
"authselect select sssd with-ecryptfs with-pamaccess\n"

#. type: delimited block -
#: src/man/authselect-migration.7.adoc:111
#, no-wrap
msgid ""
"authconfig --enablewinbind --enablewinbindauth --winbindjoin=Administrator --updateall\n"
"realm join -U Administrator --client-software=winbind WINBINDDOMAIN\n"
msgstr ""

#. type: Title -
#: src/man/authselect-migration.7.adoc:114
#, no-wrap
msgid "CONFIGURATION FILES"
msgstr "KONFIGURATIONSDATEIEN"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:116
msgid ""
"This section contains snippets for minimal configuration of various services."
msgstr ""

#. type: Title ~
#: src/man/authselect-migration.7.adoc:118
#, no-wrap
msgid "LDAP"
msgstr "LDAP"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:122
msgid ""
"Even if LDAP is not directly used through `pam_ldap` and `nss_ldap`, it is "
"still useful to configure ldap.conf to configure openldap-libs and "
"indirectly, e.g. LDAP tools such as `ldapsearch`."
msgstr ""

#. type: Block title
#: src/man/authselect-migration.7.adoc:123
#, no-wrap
msgid "{sysconfdir}/openldap/ldap.conf"
msgstr "{sysconfdir}/openldap/ldap.conf"

#. type: delimited block -
#: src/man/authselect-migration.7.adoc:127
#, no-wrap
msgid ""
"# Set the default base dn\n"
"BASE   dc=example,dc=com\n"
msgstr ""
"# Set the default base dn\n"
"BASE   dc=example,dc=com\n"

#. type: delimited block -
#: src/man/authselect-migration.7.adoc:130
#, no-wrap
msgid ""
"# Set the default LDAP server\n"
"URI    ldap://ldap.example.com ldap://ldap-master.example.com:666\n"
msgstr ""
"# Set the default LDAP server\n"
"URI    ldap://ldap.example.com ldap://ldap-master.example.com:666\n"

#. type: Title ~
#: src/man/authselect-migration.7.adoc:133
#, no-wrap
msgid "KERBEROS"
msgstr "KERBEROS"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:136
msgid ""
"If you use Kerberos, the default Kerberos realm should be configured in "
"order for krb5-libs and therefore tools such as `kinit` to work out of the "
"box."
msgstr ""

#. type: Block title
#: src/man/authselect-migration.7.adoc:137
#, no-wrap
msgid "{sysconfdir}/krb5.conf"
msgstr "{sysconfdir}/krb5.conf"

#. type: delimited block -
#: src/man/authselect-migration.7.adoc:141
#, no-wrap
msgid ""
"[libdefaults]\n"
" default_realm = MYREALM\n"
msgstr ""
"[libdefaults]\n"
" default_realm = MYREALM\n"

#. type: delimited block -
#: src/man/authselect-migration.7.adoc:146
#, no-wrap
msgid ""
"[realms]\n"
" MYREALM = {\n"
"  kdc = kdc.myrealm.org\n"
" }\n"
msgstr ""
"[realms]\n"
" MYREALM = {\n"
"  kdc = kdc.myrealm.org\n"
" }\n"

#. type: delimited block -
#: src/man/authselect-migration.7.adoc:150
#, no-wrap
msgid ""
"[domain_realm]\n"
" myrealm.org = MYREALM\n"
" .myrealm.org = MYREALM\n"
msgstr ""
"[domain_realm]\n"
" myrealm.org = MYREALM\n"
" .myrealm.org = MYREALM\n"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:153
#: src/man/authselect-migration.7.adoc:247
#, no-wrap
msgid "SSSD"
msgstr "SSSD"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:158
msgid ""
"Authselect encourages users to use SSSD wherever possible. There are many "
"configuration options, see sssd.conf(5). This is a minimal configuration "
"that creates one LDAP domain called `default`. The LDAP server is auto-"
"discovered through DNS lookups."
msgstr ""

#. type: Block title
#: src/man/authselect-migration.7.adoc:159
#: src/man/authselect-migration.7.adoc:175
#, no-wrap
msgid "{sysconfdir}/sssd/sssd.conf"
msgstr "{sysconfdir}/sssd/sssd.conf"

#. type: delimited block -
#: src/man/authselect-migration.7.adoc:164
#: src/man/authselect-migration.7.adoc:180
#, no-wrap
msgid ""
"[sssd]\n"
"config_file_version = 2\n"
"domains = default\n"
msgstr ""
"[sssd]\n"
"config_file_version = 2\n"
"domains = default\n"

#. type: delimited block -
#: src/man/authselect-migration.7.adoc:169
#, no-wrap
msgid ""
"[domain/default]\n"
"id_provider = ldap\n"
"ldap_uri = _srv_\n"
"dns_discovery_domain = myrealm\n"
msgstr ""
"[domain/default]\n"
"id_provider = ldap\n"
"ldap_uri = _srv_\n"
"dns_discovery_domain = myrealm\n"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:174
msgid ""
"And here is a configuration snippet for the same domain but now the "
"authentication is done over Kerberos. The KDC server is auto-discovered "
"through DNS lookups."
msgstr ""

#. type: delimited block -
#: src/man/authselect-migration.7.adoc:188
#, no-wrap
msgid ""
"[domain/default]\n"
"id_provider = ldap\n"
"auth_provider = krb5\n"
"ldap_uri = _srv_\n"
"krb5_server = _srv_\n"
"krb5_realm = MYREALM\n"
"dns_discovery_domain = myrealm\n"
msgstr ""
"[domain/default]\n"
"id_provider = ldap\n"
"auth_provider = krb5\n"
"ldap_uri = _srv_\n"
"krb5_server = _srv_\n"
"krb5_realm = MYREALM\n"
"dns_discovery_domain = myrealm\n"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:194
msgid ""
"If you want to configure SSSD for an IPA or Active Directory domain, use the "
"`realm` tool. This will perform an initial setup which involves creating a "
"Kerberos keytab and generating basic SSSD configuration. You can then tune "
"it up by modifying {sysconfdir}/sssd/sssd.conf."
msgstr ""

#. type: Title ~
#: src/man/authselect-migration.7.adoc:196
#, no-wrap
msgid "WINBIND"
msgstr "WINBIND"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:201
msgid ""
"If you want to configure the machine to use Winbind, use `realm`. This will "
"perform an initial setup which involves creating a Kerberos keytab and "
"running `adcli` to join the domain. It also makes changes to `smb.conf`. You "
"can then tune it up by modifying {sysconfdir}/samba/smb.conf."
msgstr ""

#. type: Plain text
#: src/man/authselect-migration.7.adoc:203
#: src/man/authselect-migration.7.adoc:255
#, no-wrap
msgid "NIS"
msgstr "NIS"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:207
msgid ""
"There are several places that needs to be configured in order to make NIS "
"authentication work. First, you need to set NIS domain and optionally also "
"NIS server in {sysconfdir}/yp.conf."
msgstr ""

#. type: Block title
#: src/man/authselect-migration.7.adoc:208
#, no-wrap
msgid "{sysconfdir}/yp.conf"
msgstr "{sysconfdir}/yp.conf"

#. type: delimited block -
#: src/man/authselect-migration.7.adoc:213
#, no-wrap
msgid ""
"domain mydomain broadcast\n"
"# or\n"
"# domain mydomain server myserver\n"
msgstr ""
"domain mydomain broadcast\n"
"# or\n"
"# domain mydomain server myserver\n"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:216
msgid "NIS domain must be also set in system network configuration."
msgstr ""

#. type: Block title
#: src/man/authselect-migration.7.adoc:217
#, no-wrap
msgid "{sysconfdir}/sysconfig/network"
msgstr "{sysconfdir}/sysconfig/network"

#. type: delimited block -
#: src/man/authselect-migration.7.adoc:220
#, no-wrap
msgid "NISDOMAIN=mydomain\n"
msgstr "NISDOMAIN=mydomain\n"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:224
msgid ""
"Now, you can set the domain name with command line so there is no need to "
"reboot your system. Additionaly, it may be necessary to enable NIS in "
"selinux."
msgstr ""

#. type: delimited block -
#: src/man/authselect-migration.7.adoc:228
#, no-wrap
msgid ""
"$ domainname mydomain\n"
"$ setsebool -P allow_ypbind 1\n"
msgstr ""
"$ domainname mydomain\n"
"$ setsebool -P allow_ypbind 1\n"

#. type: Title ~
#: src/man/authselect-migration.7.adoc:231
#, no-wrap
msgid "PASSWORD QUALITY"
msgstr "PASSWORT-QUALITÄT"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:236
msgid ""
"Authselect enables `pam_pwquality` module to enforce password quality "
"restrictions. This module is enabled only for local users. Remote users "
"should use the password policy that is enforced by the respective remote "
"server."
msgstr ""

#. type: Plain text
#: src/man/authselect-migration.7.adoc:240
msgid ""
"The `pam_pwquality` module can be configured in {sysconfdir}/security/"
"pwquality.conf. See pam_pwquality(8) to see its configuration options and "
"defaults."
msgstr ""

#. type: Title -
#: src/man/authselect-migration.7.adoc:242
#, no-wrap
msgid "STARTING SERVICES"
msgstr "DIENSTE STARTEN"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:245
msgid ""
"Depending on your configuration, you need to start required services "
"manually with systemd."
msgstr ""

#. type: Plain text
#: src/man/authselect-migration.7.adoc:249
#, no-wrap
msgid "systemctl enable sssd.service ; systemctl start sssd.service\n"
msgstr "systemctl enable sssd.service ; systemctl start sssd.service\n"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:251
msgid "Winbind"
msgstr "Winbind"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:253
#, no-wrap
msgid "systemctl enable winbind.service ; systemctl start winbind.service\n"
msgstr "systemctl enable winbind.service ; systemctl start winbind.service\n"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:258
#, no-wrap
msgid ""
"systemctl enable rpcbind.service ; systemctl start rpcbind.service\n"
"systemctl enable ypbind.service ; systemctl start ypbind.service\n"
msgstr ""
"systemctl enable rpcbind.service ; systemctl start rpcbind.service\n"
"systemctl enable ypbind.service ; systemctl start ypbind.service\n"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:260
msgid "If mkhomedir feature is enabled"
msgstr ""

#. type: Plain text
#: src/man/authselect-migration.7.adoc:262
#, no-wrap
msgid "systemctl enable oddjobd.service ; systemctl start oddjobd.service\n"
msgstr "systemctl enable oddjobd.service ; systemctl start oddjobd.service\n"

#. type: Title -
#: src/man/authselect-migration.7.adoc:264
#, no-wrap
msgid "AUTHCONFIG TOOLS"
msgstr "AUTHCONFIG-WERKZEUGE"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:268
msgid ""
"Authconfig shipped a tool called _cacertdir_rehash_. If you depend on this "
"tool, please switch to native _openssl_ command: *openssl rehash "
"<directory>* that serves the same purpose."
msgstr ""

#. type: Title -
#: src/man/authselect-migration.7.adoc:270
#, no-wrap
msgid "SEE ALSO"
msgstr "SIEHE AUCH"

#. type: Plain text
#: src/man/authselect-migration.7.adoc:272
msgid ""
"authselect(8), authselect-profiles(5), realm(8), ipa-client-install(1), sssd."
"conf(5), smb.conf(5), ldap.conf(5), krb5.conf(5)"
msgstr ""
"authselect(8), authselect-profiles(5), realm(8), ipa-client-install(1), sssd."
"conf(5), smb.conf(5), ldap.conf(5), krb5.conf(5)"
